Cybersecurity Advisories & Technical Guidance

NSA Leverages its elite technical capability to develop advisories and mitigations on evolving cybersecurity threats.

Browse or search our repository of advisories, info sheets, tech reports, and operational risk notices listed below. Some resources have access requirements.

For a subset of cybersecurity products focused on telework and general network security for end users, view our Telework and Mobile Security Guidance page here.

ImageTitlePublication Date
 CSI_EMBRACING_ZT_SECURITY_MODEL_UOO115131-21.PDFInfo Sheet: Embracing a Zero Trust Security Model (February 2021)2/25/2021
 CSA_SVR_TARGETS_US_ALLIES_UOO13234021.PDFCSA: Russian SVR Targets U.S. and Allied Networks4/15/2021
 CSA_STOP-MCA-AGAINST-OT_UOO13672321.PDFCSA: Stop Malicious Cyber Activity Against Connected Operational Technology4/29/2021
 ADVISORY FURTHER TTPS ASSOCIATED WITH SVR CYBER ACTORS.PDFCybersecurity Advisory: Further TTPs associated with SVR cyber actors5/7/2021
 POTENTIAL THREAT VECTORS TO 5G INFRASTRUCTURE.PDFPotential Threat Vectors To 5G Infrastructure5/10/2021
 CSI_PROTECTIVE DNS_UOO117652-21.PDFInfo Sheet: Selecting a Protective DNS Service (May 2021 Update)5/31/2021
 CSI_DEPLOYING SECURE VVOIP SYSTEMS.PDFCSI: Deploying Secure Unified Communications/Voice and Video over IP Systems (Abridged) (June 2021)6/17/2021
 CTR_DEPLOYING SECURE VVOIP SYSTEMS.PDFCTR: Deploying Secure Unified Communications/Voice and Video over IP Systems (June 2021)6/17/2021
 CSA_GRU_GLOBAL_BRUTE_FORCE_CAMPAIGN_UOO158036-21.PDFCSA: Russian GRU Global Brute Force Campaign7/1/2021
 CSA_CHINESE_STATE-SPONSORED_CYBER_TTPS.PDFCSA: Chinese State Sponsored Cyber TTPs7/19/2021
Page 9 of 10

Additional Documents

The following resources require use of a Federal/DoD Public Key Infrastructure (PKI), Personal Identity Verification (PIV) or Common Access Card (CAC) client certificate. Read more information about these access requirements.